Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Sun Java Runtime Environment (JRE) in JDK and JRE 6 Update 2 and earlier, JDK and JRE 5.0 Update 12 and earlier, SDK and JRE 1.4.2_15 and earlier, and SDK and JRE 1.3.1_20 and earlier, when Firefox or Opera is used, allows remote attackers to violate the security model for JavaScript outbound connections via a multi-pin DNS rebinding attack dependent on the LiveConnect API, in which JavaScript download relies on DNS resolution by the browser, but JavaScript socket operations rely on separate DNS resolution by a Java Virtual Machine (JVM), a different issue than CVE-2007-5273. NOTE: this is similar to CVE-2007-5232.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sun JDK和 JRE Java Runtime Environment Firefox或Opera DNS rebinding 输出连接漏洞
Vulnerability Description
JDK和 JRE 6 Update 2版本及其早期版本, JDK和JRE 5.0 Update 12版本及其早期版本, SDK和JRE 1.4.2_15版本及其早期版本,以及SDK和JRE 1.3.1_20版本及其早期版本中的Sun Java Runtime Environment (JRE),当Firefox或Opera使用时, allows 远程攻击者可以借助LiveConnect API的一个多头的DNS rebinding攻击违背JavaScript输出连接的安全模式。
CVSS Information
N/A
Vulnerability Type
N/A